With SSL/TLS being one of the fastest growing attack vectors, organizations need an effective way to deploy deep packet inspection technology that is capable of identifying and blocking malicious traffic.
Traditionally, organizations have deployed intrusion prevention system (IPS) inline so that all traffic flows through the device, allowing for malicious traffic to be inspected and blocked. The downside to this approach is that the IPS device must be sized for the throughput of all traffic, not just for traffic that needs to be inspected. This can lead to unnecessarily high costs if a large percentage of traffic doesn’t need to be inspected.